What Is Waiting For You?

Take your coffee because you will need it!

alternative

Security Event Monitoring

Be aware of next attacks by monitoring 24/7. When you notice an attack, start a detailed investigation and take your actions

  • Real world cases
  • False positive alerts (You need to fix false positive alerts)
  • SOC environment
alternative

Incident Investigation

Try to understand what is happening using all the data you have. Fortunately you have a lot of data.

  • Use of log management server
  • Host based analysis
  • Network based analysis
alternative

Take an Action

Have you noticed a suspicious situation and do not know what to do? Run the playbooks and take action

  • Run playbook
  • Containment
  • Block addresses

Welcome To The Real World


As a defender, you only have one right to make a mistake

You have to be fast and faultless
alternative

CONTACT